Choosing a compliance system means choosing a place for sensitive data. This is how Oanax handles that — and for anything not covered here: ask us, you will get a straight answer.
Oanax runs on Google Cloud. Traffic between your browser and Oanax is encrypted (HTTPS). Every organisation works in its own workspace; members of one workspace cannot see another.
Access runs through roles you manage: a role decides who can see and manage what, down to department level. You grant and revoke admin rights yourself, per member, at any time. Remove a member and their access ends immediately.
Yours. Oanax uses the content of your workspace to make Oanax work for you — for nothing else. A data processing agreement (GDPR) is available on request, as are agreements on retention and deletion when you leave.
AI in Oanax writes drafts: a module description, a question set, a piece of advice. The content you provide is used to produce that suggestion — then a human reviews the result, and nothing is published automatically. AI requests go through Oanax's own backend; no model browses your workspace on its own.
For hosting: Google Cloud. For AI suggestions: Anthropic (Claude). We share the full, current list of sub-processors on request, together with the data processing agreement.
Security questionnaire, processing agreement, export terms when you leave — ask, and you will get an answer from someone who builds the system.
Ask your security question